Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions prior to 9.10P1 are susceptible to a vulnerability which could allow an attacker to discover cluster, node and Active IQ Unified Manager specific information via AutoSupport telemetry data that is sent even when AutoSupport has been disabled.
References
Link | Resource |
---|---|
https://security.netapp.com/advisory/ntap-20220324-0001/ | Patch Vendor Advisory |
https://security.netapp.com/advisory/ntap-20220324-0001/ | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 06:48
Type | Values Removed | Values Added |
---|---|---|
References | () https://security.netapp.com/advisory/ntap-20220324-0001/ - Patch, Vendor Advisory |
08 Aug 2023, 14:22
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo |
Information
Published : 2022-08-25 18:15
Updated : 2024-11-21 06:48
NVD link : CVE-2022-23235
Mitre link : CVE-2022-23235
CVE.ORG link : CVE-2022-23235
JSON object : View
Products Affected
netapp
- active_iq_unified_manager
CWE